Summary
Fifth Third Bank is a financial services institution seeking a Threat Emulation Engineer to support enterprise information security. The role focuses on planning and executing cyber attack operations, researching emerging AI technologies and attack techniques, creating supporting infrastructure and tools, and communicating findings to improve detection and response capabilities.
Responsibilities
- Responsible for collaborating with team members to complete cyber attack operations
- Research and operationalize emerging AI technologies to advance team capabilities, develop AI-enabled adversary techniques, and continuously challenge defensive controls against evolving threats
- Responsible for defining, planning, and documenting new operations and desired outcomes
- Responsibility for creating and operating infrastructure, services, and applications to achieve the attack operation
- Responsible for researching new technologies and architectures to determine how to attack weaknesses in a realistic attack chain
- Clearly communicate research & attack operational items both written and verbally
- Stay up-to-date and evaluate security trends, evolving threats, risks and vulnerabilities and apply tools to evaluate the risk in the context of the Financial Services sector to mitigate risk
- Support advances to our detection & response mission
Skills
- Bachelor's Degree in Computer Science, Information Systems, or other related field, or other relevant experience
- 4 to 6 years of cyber security related experience
- Strong analytical, tactical and critical thinking ability
- Ability to handle multiple competing priorities in a fast-paced environment
- Ability to communicate effectively across multiple levels
- Ability to work independently and in a cross functional team
- The ability to approach a problem with a wide range of solutions that aren't the obvious answer
- Unremitting curiosity with a desire to find the answer
- Understand basic cloud concepts (especially AWS) and how an attacker may leverage the cloud
- Understand basic networking protocols, how they are used, and how they may be used for the purposes of a Red Team Operation
- Python / C# / Ruby / NodeJS Experience
- The ability to rapidly prototype out solutions and build re-usable tools for the team
- The understanding of how Windows works under the hood (specifically when it comes to Authentication)
- Position not available for immigration sponsorship
Qualifications
Must Haves
- Bachelor's Degree in Computer Science, Information Systems, or other related field, or other relevant experience
- 4 to 6 years of cyber security related experience
- Strong analytical, tactical and critical thinking ability
- Ability to handle multiple competing priorities in a fast-paced environment
- Ability to communicate effectively across multiple levels
- Ability to work independently and in a cross functional team
- The ability to approach a problem with a wide range of solutions that aren't the obvious answer
- Unremitting curiosity with a desire to find the answer
- Understand basic cloud concepts (especially AWS) and how an attacker may leverage the cloud
- Understand basic networking protocols, how they are used, and how they may be used for the purposes of a Red Team Operation
- Python / C# / Ruby / NodeJS Experience
- The ability to rapidly prototype out solutions and build re-usable tools for the team
- The understanding of how Windows works under the hood (specifically when it comes to Authentication)
- Position not available for immigration sponsorship
Benefits
- Eligible to participate in an incentive compensation plan, with payment based upon company, line of business and/or individual performance.
- Virtual work arrangement in Ohio.